@atlaspack/types-internal
Advanced tools
+5
-5
| { | ||
| "name": "@atlaspack/types-internal", | ||
| "version": "2.14.1-canary.493+a2c574770", | ||
| "version": "2.14.1-canary.494+ecf8b7931", | ||
| "license": "(MIT OR Apache-2.0)", | ||
@@ -19,9 +19,9 @@ "main": "./lib/index.js", | ||
| "dependencies": { | ||
| "@atlaspack/diagnostic": "2.14.1-canary.493+a2c574770", | ||
| "@atlaspack/feature-flags": "2.14.1-canary.493+a2c574770", | ||
| "@atlaspack/source-map": "3.2.10-canary.4204+a2c574770", | ||
| "@atlaspack/diagnostic": "2.14.1-canary.494+ecf8b7931", | ||
| "@atlaspack/feature-flags": "2.14.1-canary.494+ecf8b7931", | ||
| "@atlaspack/source-map": "3.2.10-canary.4205+ecf8b7931", | ||
| "utility-types": "^3.10.0" | ||
| }, | ||
| "type": "commonjs", | ||
| "gitHead": "a2c574770d2e616576e817801842576ead072532" | ||
| "gitHead": "ecf8b7931c5516df2117d525cefff5d7e1d20bee" | ||
| } |
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package